Method and system for initiating a virtual private network over a shared network on behalf of a wireless terminal
First Claim
Patent Images
1. A system comprising:
- A shared network;
a radio access network, the radio access network including a base transceiver station (BTS) for communicating with a wireless terminal over an air interface and a packet data serving node (PDSN) for routing packets between the wireless terminal and the shared network;
an enterprise network;
a resource on the enterprise network, wherein the wireless terminal and the resource are able to engage in packet communication over a communication pathway, the communication pathway extending through the radio access network, the shared network, and the enterprise network;
a VPN server in the communication pathway;
a VPN terminator in the communication pathway, wherein the VPN server and the VPN terminator are able to establish a VPN connection between them through the shared network, the VPN connection providing part of the communication pathway; and
a network services platform in the communication pathway between the PDSN and the VPN server, wherein the network services platform is able to manipulate data carried in packets exchanged between the wireless terminal and the resource to provide at least one communication service, wherein the at least one communication service comprises a transcoding service in which the network services platform transcodes data transmitted by the wireless terminal into a format compatible with a capability of the resource indicated by the wireless terminal.
6 Assignments
0 Petitions
Accused Products
Abstract
A VPN server on a radio access network may initiate a virtual private network (VPN) over a shared network, e.g., Internet, on behalf of a wireless terminal. The VPN may span the shared network, but not span the radio access network. As a result, the radio access network may be able to analyze and manipulate data sent by the wireless terminal. Additionally, the VPN may securely transport the data through the shared network.
153 Citations
20 Claims
-
1. A system comprising:
-
A shared network; a radio access network, the radio access network including a base transceiver station (BTS) for communicating with a wireless terminal over an air interface and a packet data serving node (PDSN) for routing packets between the wireless terminal and the shared network; an enterprise network; a resource on the enterprise network, wherein the wireless terminal and the resource are able to engage in packet communication over a communication pathway, the communication pathway extending through the radio access network, the shared network, and the enterprise network; a VPN server in the communication pathway; a VPN terminator in the communication pathway, wherein the VPN server and the VPN terminator are able to establish a VPN connection between them through the shared network, the VPN connection providing part of the communication pathway; and a network services platform in the communication pathway between the PDSN and the VPN server, wherein the network services platform is able to manipulate data carried in packets exchanged between the wireless terminal and the resource to provide at least one communication service, wherein the at least one communication service comprises a transcoding service in which the network services platform transcodes data transmitted by the wireless terminal into a format compatible with a capability of the resource indicated by the wireless terminal. - View Dependent Claims (2, 3, 4, 5, 6, 7, 8)
-
-
9. A method comprising:
-
establishing a VPN connection through a shared network between a VPN server and a VPN terminator for packet communication between a wireless terminal and a resource on an enterprise network; the wireless terminal transmitting a packet to a radio access network over an air interface; a packet entity in the radio access network routing the packet to a network services platform; the network services platform manipulating data in the packet to provide at least one communication service, wherein the at least one communication service comprises a transcoding service in which the network services platform transcodes the data in the packet into a format that is compatible with a capability of the resource as indicated by the wireless terminal; after manipulating the data in the packet, the network services platform sending the packet to the VPN server; the VPN server tunneling the packet through the VPN connection to the VPN terminator; and the VPN terminator receiving the packet and routing the packet to the resource over the enterprise network. - View Dependent Claims (10, 11, 12, 13, 14, 15, 16, 17, 18, 19, 20)
-
Specification